NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
67616  CVE-2005-1898  The passthrough functionality in phpThumb.php in phpThumb() before 1.5.4 allows remote attackers to read files that are not images.    Medium  2017-01-03  2008-09-05  View
2336  CVE-2008-2420  The OCSP functionality in stunnel before 4.24 does not properly search certificate revocation lists (CRL), which allows remote attackers to bypass intended access restrictions by using revoked certificates.    6.8  Medium  2017-01-03  2011-03-07  View
67872  CVE-2005-2168  delete.php in Plague News System 0.6 and earlier allows remote unauthenticated attackers to delete news, comments, and shoutbox posts by modifying the id parameter.    Medium  2017-01-03  2008-09-05  View
2592  CVE-2008-2694  Cross-site scripting (XSS) vulnerability in search.php in phpInv 0.8.0 allows remote attackers to inject arbitrary web script or HTML via the keyword parameter.    4.3  Medium  2017-01-03  2009-04-14  View
68128  CVE-2005-2437  Website Baker Project does not properly verify the file extensions of uploaded files, which allows remote attackers to upload and execute arbitrary PHP code.    Medium  2017-07-18  2017-07-10  View

Page 1157 of 17672, showing 5 records out of 88360 total, starting on record 5781, ending on 5785

Actions